Search This Blog

How you can get top grades, to get a best job.

Wikipedia

Search results

Pages

Pages

Featured post

100% Up to Date 2V0-761 Dumps Through RealExamDumps.us | Success Guaranteed

Prepare & Pass 2V0-761 Exam with Highly Qualified Experts | RealExamDumps from emmasmith45345

Contact Form

Name

Email *

Message *

Wednesday 13 November 2019

Latest Fortinet NSE4-5.4 Dumps with PDF and Fortinet NSE4-5.4 Dumps Questions

Question No 1 

Which of the following Fortinet hardware accelerators can be used to offload flow-based antivirus inspection? (Choose two.)

A. SP3
B. CP8
C. NP4
D. NP6

Answer: A,B 


Question No 2 

What methods can be used to deliver the token code to a user who is configured to use two-factor authentication? (Choose three.)

A. Code blocks
B. SMS phone message
C. FortiToken
D. Browser pop-up window
E. Email

Answer: B,C,E 


Question No 3 

You are tasked to architect a new IPsec deployment with the following criteria:
- There are two HQ sites that all satellite offices must connect to.
- The satellite offices do not need to communicate directly with other satellite offices.
- No dynamic routing will be used.
- The design should minimize the number of tunnels being configured.
Which topology should be used to satisfy all of the requirements?

A. Redundant
B. Hub-and-spoke
C. Partial mesh
D. Fully meshed

Answer: B 


Question No 4 

Which statements about DNS filter profiles are true? (Choose two.)

A. They can inspect HTTP traffic.
B. They must be applied in firewall policies with SSL inspection enabled.
C. They can block DNS request to known botnet command and control servers.
D. They can redirect blocked requests to a specific portal.

Answer: C,D 


Question No 5 

An administrator needs to offload logging to FortiAnalyzer from a FortiGate with an internal hard drive. Which statements are true? (Choose two.)

A. Logs must be stored on FortiGate first, before transmitting to FortiAnalyzer
B. FortiGate uses port 8080 for log transmission
C. Log messages are transmitted as plain text in LZ4 compressed format (store-and-upload method).
D. FortiGate can encrypt communications using SSL encrypted OFTP traffic.

Answer: A,C 


Question No 6 

An administrator observes that the port1 interface cannot be configured with an IP address. What can be the reasons for that? (Choose three.)

A. The interface has been configured for one-arm sniffer.
B. The binterface is a member of a virtual wire pair.
C. The operation mode is transparent.
D. The interface is a member of a zone.
E. Captive portal is enabled in the interface.

Answer: A,B,C 


Question No 7 

When browsing to an internal web server using a web-mode SSL VPN bookmark, which IP address is used as the source of the HTTP request?

A. The FortiGate unit’s public IP address
B. The FortiGate unit’s internal IP address
C. The remote user’s virtual IP address
D. The remote user’s public IP address

Answer: B 


Question No 8 

What is FortiGate’s behavior when local disk logging is disabled?

A. Only real-time logs appear on the FortiGate dashboard.
B. No logs are generated.
C. Alert emails are disabled.
D. Remote logging is automatically enabled.

Answer: A 


Question No 9 

Which statements about One-to-One IP pool are true? (Choose two.)

A. It allows configuration of ARP replies.
B. It allows fixed mapping of an internal address range to an external address range.
C. It is used for destination NAT.
D. It does not use port address translation.

Answer: B,D 


Question No 10 

An administrator needs to be able to view logs for application usage on your network. What configurations are required to ensure that FortiGate generates logs for application usage activity? (Choose two.)

A. Enable a web filtering profile on the firewall policy.
B. Create an application control policy.
C. Enable logging on the firewall policy.
D. Enable an application control security profile on the firewall policy.

Answer: C,D

0 comments:

Post a Comment